An authorization model for query execution in the cloud

被引:1
|
作者
di Vimercati, Sabrina De Capitani [1 ]
Foresti, Sara [1 ]
Jajodia, Sushil [2 ]
Livraga, Giovanni [1 ]
Paraboschi, Stefano [3 ]
Samarati, Pierangela [1 ]
机构
[1] Univ Milan, Milan, Italy
[2] George Mason Univ, Fairfax, VA 22030 USA
[3] Univ Bergamo, Bergamo, Italy
来源
VLDB JOURNAL | 2022年 / 31卷 / 03期
基金
欧盟地平线“2020”; 美国国家科学基金会;
关键词
Authorization model; Collaborative query evaluation; Plaintext and encrypted visibility; Implicit attributes; Equivalent attributes; Relation profile;
D O I
10.1007/s00778-021-00709-x
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
We present a novel approach for the specification and enforcement of authorizations that enables controlled data sharing for collaborative queries in the cloud. Data authorities can establish authorizations regulating access to their data distinguishing three visibility levels (no visibility, encrypted visibility, and plaintext visibility). Authorizations are enforced accounting for the information content carried in the computation to ensure no information is improperly leaked and adjusting visibility of data on-the-fly. Assignment of operations to subjects takes into consideration the cost of operation execution as well as of the encryption/decryption operations needed to make the assignment authorized. Our approach enables users and data authorities to fully enjoy the benefits and economic savings of the competitive open cloud market, while maintaining control over data.
引用
收藏
页码:555 / 579
页数:25
相关论文
共 50 条
  • [31] The XML Query Execution Engine (XEE)
    Scheffner, D
    Freytag, JC
    DATABASES AND INFORMATION SYSTEMS II, 2002, : 81 - 94
  • [32] Thrifty Query Execution via Incrementability
    Tang, Dixin
    Shang, Zechao
    Elmore, Aaron J.
    Krishnan, Sanjay
    Franklin, Michael J.
    SIGMOD'20: PROCEEDINGS OF THE 2020 ACM SIGMOD INTERNATIONAL CONFERENCE ON MANAGEMENT OF DATA, 2020, : 1241 - 1256
  • [33] On query execution over encrypted data
    Baby, Tinu
    Cherukuri, Aswani Kumar
    SECURITY AND COMMUNICATION NETWORKS, 2015, 8 (02) : 321 - 331
  • [34] Doppler: Understanding Serverless Query Execution
    Bodner, Thomas
    Pietz, Tobias
    Bollmeier, Lars Jonas
    Ritter, Daniel
    PROCEEDINGS OF THE INTERNATIONAL WORKSHOP ON BIGIG DATA IN EMERGENT DISTRIBUTED ENVIRONMENTS (BIDEDE 2022), 2022,
  • [35] Query Execution over Encrypted Database
    Kumar, Raju Ranjan
    Hussain, Muzzammil
    2015 SECOND INTERNATIONAL CONFERENCE ON ADVANCES IN COMPUTING AND COMMUNICATION ENGINEERING ICACCE 2015, 2015, : 459 - 464
  • [36] PARALLEL QUERY EXECUTION IN PRISMA DB
    WILSCHUT, AN
    APERS, PMG
    FLOKSTRA, J
    LECTURE NOTES IN COMPUTER SCIENCE, 1991, 503 : 424 - 433
  • [37] Query Execution Optimization in Spark SQL
    Ji, Xuechun
    Zhao, Maoxian
    Zhai, Mingyu
    Wu, Qingxi
    SCIENTIFIC PROGRAMMING, 2020, 2020 (2020)
  • [38] Influence of Oracle hints on query execution
    Panus, Jan
    Pirkl, Josef
    SELECTED TOPICS IN APPLIED COMPUTER SCIENCE, 2010, : 490 - +
  • [39] Scientific workflow execution in the cloud using a dynamic runtime model
    Erbel, Johannes
    Grabowski, Jens
    SOFTWARE AND SYSTEMS MODELING, 2024, 23 (01): : 163 - 193
  • [40] A Performance Model to Estimate Execution Time of Scientific Workflows on the Cloud
    Pietri, Ilia
    Juve, Gideon
    Deelman, Ewa
    Sakellariou, Rizos
    2014 9TH WORKSHOP ON WORKFLOWS IN SUPPORT OF LARGE-SCALE SCIENCE (WORKS), 2014, : 11 - 19